Anonymous
2026-09-13 16:45:17
(22 hours ago)
IP matched detection query many 3xx errors.
Brute-Force
Anonymous
2026-09-12 19:20:03
(1 day ago)
| Multiple common web attacks from same source ip. (multiple servers)
Web App Attack
Hacking
SQL Injection
๐ง๐ช
madeit
2026-09-11 01:34:16
(3 days ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 23:00:46
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.139 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 19:00:42.493265 2026] [security2:error] [pid 25109:tid 25109] [client 172.69.223.139:13049] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.willmarksynthetics.com"] [uri "/.git/HEAD"] [unique_id "apNkmucp0Pm2mTtdbiI7OgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-27 23:07:39
(2 weeks ago)
Trying to access config files
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 10:20:55
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.139 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 06:20:49.698848 2026] [security2:error] [pid 25933:tid 25933] [client 172.69.223.139:9509] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.comsew.com.au"] [uri "/.git/HEAD"] [unique_id "apAPgVPtjOWiQw9KV4gjPwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alboweb B.V.
2026-08-27 10:12:02
(2 weeks ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 08:28:50
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.139 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 04:28:45.365006 2026] [security2:error] [pid 2980:tid 2980] [client 172.69.223.139:11051] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "proprocessor.com"] [uri "/.git/config"] [unique_id "ao_1PWAHCQkltxhdcVtwpAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 21:15:16
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.139 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 17:15:11.431067 2026] [security2:error] [pid 18744:tid 18744] [client 172.69.223.139:12587] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.heathdiesel.com"] [uri "/.git/config"] [unique_id "ao9XX4NxGEzR3FH7r2G9oQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-25 21:06:06
(2 weeks ago)
Trying to access config files
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 05:09:20
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.139 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 01:09:13.848752 2026] [security2:error] [pid 27545:tid 27545] [client 172.69.223.139:11713] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sarawatt.com"] [uri "/.git/HEAD"] [unique_id "ao0jeT3PLeMBoxP5YSNovwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 22:51:43
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.139 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 18:51:37.461616 2026] [security2:error] [pid 24085:tid 24085] [client 172.69.223.139:11420] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.dudleyanddudley.com"] [uri "/.git/config"] [unique_id "aozK-fJZxuriAabwHnlS9AAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-23 22:21:31
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.139 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 18:21:24.912836 2026] [security2:error] [pid 2563:tid 2563] [client 172.69.223.139:10906] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.travelimts.com"] [uri "/.git/HEAD"] [unique_id "aotyZG4tLtbL5DTIyTOwpgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-23 13:20:54
(3 weeks ago)
(mod_security) mod_security (id:949110) triggered by 172.69.223.139 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:949110) triggered by 172.69.223.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 09:20:47.005269 2026] [security2:error] [pid 24634:tid 24634] [client 172.69.223.139:9731] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "qualiabookings.com"] [uri "/.git/config"] [unique_id "aorzr7do4QxtHirzfVPDnAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-23 05:05:25
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.139 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 01:05:20.605211 2026] [security2:error] [pid 10783:tid 10783] [client 172.69.223.139:10180] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.sekelconsulting.com"] [uri "/.git/HEAD"] [unique_id "aop_kNtqnD5DknWzemOAJwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack